MITRE Corporation
Open knowledge base of adversary tactics and techniques observed in real attacks. Structures attacker behaviour into a matrix of tactics and techniques, declined for enterprise, mobile and industrial environments. The common language for describing modus operandi in cybersecurity.
Curated by MITRE from public intrusion reports and community contributions, with each technique documented and linked to known threat groups. The framework describes the known and observed; it measures neither frequency nor probability of occurrence.
Use to map threat scenarios and structure an assessment of an insured's security controls. A methodological backbone for cyber scenario modelling.